TROYANOSYVIRUS
Active ThreatLOW

201.254.231.198

Country of Origin🇦🇷 Argentina
First Detection1/20/2026
Last Activity5/6/2026
ISPSAN JUAN INNOVA S.E.
🎯
20
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇦🇷 Argentina
City
San Juan
ASN
AS272925
ISP
SAN JUAN INNOVA S.E.

Attack Types

malware_capture

Attacked Ports

445

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
802222808082918728
Vulnerabilities
CVE-2022-31813CVE-2019-0211CVE-2023-38709CVE-2024-38474CVE-2020-11985CVE-2023-45802CVE-2013-0941CVE-2016-8740CVE-2017-15715CVE-2024-27316CVE-2018-1333CVE-2022-22721CVE-2024-38473CVE-2021-44790CVE-2017-3167CVE-2012-4360CVE-2016-4975CVE-2024-40898CVE-2016-4979CVE-2021-32786
Hostnames
201-254-231-198.mrse.com.ar
CPEs
cpe:/a:openbsd:openssh:8.9p1cpe:/o:microsoft:windowscpe:/o:mikrotik:routeros:6.49.17cpe:/a:apache:http_server:2.4.18cpe:/a:microsoft:internet_information_services:8.5cpe:/o:canonical:ubuntu_linuxcpe:/a:microsoft:internet_information_services

Risk Assessment

25
/100
LowMediumHighCritical